apache2

Direct Vulnerabilities

Known vulnerabilities in the apache2 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Information Exposure

<2.4.41-4ubuntu3.23+esm6
  • M
Use After Free

<2.4.41-4ubuntu3.23+esm6
  • M
Cross-site Scripting (XSS)

<2.4.41-4ubuntu3.23+esm6
  • M
Heap-based Buffer Overflow

<2.4.41-4ubuntu3.23+esm5
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<2.4.41-4ubuntu3.23+esm5
  • M
Buffer Over-read

<2.4.41-4ubuntu3.23+esm5
  • M
Use After Free

<2.4.41-4ubuntu3.23+esm5
  • M
Uncontrolled Memory Allocation

<2.4.41-4ubuntu3.23+esm5
  • M
Exposure of Resource to Wrong Sphere

<2.4.41-4ubuntu3.23+esm5
  • M
Out-of-bounds Read

<2.4.41-4ubuntu3.23+esm5
  • M
Buffer Underflow

<2.4.41-4ubuntu3.23+esm5
  • M
Improper Privilege Management

<2.4.41-4ubuntu3.23+esm5
  • M
Heap-based Buffer Overflow

<2.4.41-4ubuntu3.23+esm5
  • L
CVE-2026-33523

<2.4.41-4ubuntu3.23+esm5
  • M
Heap-based Buffer Overflow

<2.4.41-4ubuntu3.23+esm5
  • L
Out-of-bounds Read

<2.4.41-4ubuntu3.23+esm5
  • L
NULL Pointer Dereference

<2.4.41-4ubuntu3.23+esm5
  • L
Out-of-bounds Read

<2.4.41-4ubuntu3.23+esm5
  • L
Heap-based Buffer Overflow

<2.4.41-4ubuntu3.23+esm4
  • M
Improper Privilege Management

<2.4.41-4ubuntu3.23+esm4
  • L
NULL Pointer Dereference

<2.4.41-4ubuntu3.23+esm4
  • L
Buffer Over-read

<2.4.41-4ubuntu3.23+esm4
  • L
Improper Neutralization

<2.4.41-4ubuntu3.23+esm3
  • M
CVE-2025-66200

<2.4.41-4ubuntu3.23+esm3
  • L
Integer Overflow or Wraparound

<2.4.41-4ubuntu3.23+esm3
  • M
Information Exposure

<2.4.41-4ubuntu3.23+esm3
  • M
Server-Side Request Forgery (SSRF)

<2.4.41-4ubuntu3.23+esm2
  • M
Improper Neutralization

<2.4.41-4ubuntu3.23+esm2
  • M
Improper Input Validation

<2.4.41-4ubuntu3.23+esm2
  • M
Improper Access Control

<2.4.41-4ubuntu3.23+esm2
  • M
Improper Authentication

<2.4.41-4ubuntu3.23+esm2
  • M
Reachable Assertion

<2.4.41-4ubuntu3.23+esm2
  • M
Memory Leak

<2.4.41-4ubuntu3.23+esm2
  • M
CVE-2024-40725

<2.4.41-4ubuntu3.21
  • M
Improper Encoding or Escaping of Output

<2.4.41-4ubuntu3.23
  • M
NULL Pointer Dereference

<2.4.41-4ubuntu3.19
  • M
CVE-2024-39884

<2.4.41-4ubuntu3.19
  • M
Improper Encoding or Escaping of Output

<2.4.41-4ubuntu3.19
  • H
Improper Encoding or Escaping of Output

<2.4.41-4ubuntu3.19
  • M
NULL Pointer Dereference

<2.4.41-4ubuntu3.19
  • M
CVE-2024-38476

<2.4.41-4ubuntu3.19
  • M
Improper Input Validation

<2.4.41-4ubuntu3.19
  • M
CVE-2023-38709

<2.4.41-4ubuntu3.17
  • M
CVE-2024-24795

<2.4.41-4ubuntu3.17
  • M
Allocation of Resources Without Limits or Throttling

<2.4.41-4ubuntu3.17
  • L
Out-of-bounds Read

<2.4.41-4ubuntu3.15
  • M
Improper Resource Shutdown or Release

<2.4.41-4ubuntu3.15
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.14
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.14
  • M
Out-of-bounds Write

<2.4.41-4ubuntu3.13
  • M
HTTP Response Splitting

<2.4.41-4ubuntu3.13
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.13
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.12
  • M
Allocation of Resources Without Limits or Throttling

<2.4.41-4ubuntu3.12
  • M
Allocation of Resources Without Limits or Throttling

<2.4.41-4ubuntu3.12
  • M
Insufficient Verification of Data Authenticity

<2.4.41-4ubuntu3.12
  • M
CVE-2022-30556

<2.4.41-4ubuntu3.12
  • M
Integer Overflow or Wraparound

<2.4.41-4ubuntu3.12
  • L
Integer Overflow or Wraparound

<2.4.41-4ubuntu3.12
  • M
Improper Initialization

<2.4.41-4ubuntu3.10
  • L
Integer Overflow or Wraparound

<2.4.41-4ubuntu3.10
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.10
  • M
Out-of-bounds Write

<2.4.41-4ubuntu3.10
  • M
NULL Pointer Dereference

<2.4.41-4ubuntu3.9
  • M
Out-of-bounds Write

<2.4.41-4ubuntu3.9
  • M
Server-Side Request Forgery (SSRF)

<2.4.41-4ubuntu3.6
  • M
Out-of-bounds Read

<2.4.41-4ubuntu3.5
  • M
Buffer Overflow

<2.4.41-4ubuntu3.5
  • M
NULL Pointer Dereference

<2.4.41-4ubuntu3.5
  • M
CVE-2021-33193

<2.4.41-4ubuntu3.5
  • M
HTTP Request Smuggling

*
  • M
NULL Pointer Dereference

<2.4.41-4ubuntu3.3
  • M
Out-of-bounds Write

<2.4.41-4ubuntu3.3
  • M
CVE-2021-30641

<2.4.41-4ubuntu3.3
  • L
Out-of-bounds Write

<2.4.41-4ubuntu3.3
  • L
NULL Pointer Dereference

<2.4.41-4ubuntu3.3
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.1
  • M
Buffer Overflow

<2.4.41-4ubuntu3.1
  • M
HTTP Request Smuggling

<2.4.41-4ubuntu3.1
  • L
Open Redirect

<2.4.41-4ubuntu3.1
  • L
Use of Uninitialized Resource

<2.4.41-4ubuntu3.1
  • L
Open Redirect

<2.4.41-1ubuntu1
  • L
Use of Incorrectly-Resolved Name or Reference

<2.4.38-2ubuntu2